Show Table of Contents
Chapter 9. Security
SSH connections using libica AES-GCM now work correctly
Previously, unmodified data could be tagged as modified when using decryption with the
AES-GCM cipher suite. As a consequence, SSH connections could not be established when using AES-GCM, and with some applications, data encrypted using AES-GCM could not be decrypted. With this update, the tag is computed from the ciphertext when decrypting and from the plaintext when encrypting. As a result, SSH connections using AES-GCM are now successfully established, and it is possible to decrypt data encrypted with AES-GCM. (BZ#1490894)

Where did the comment section go?
Red Hat's documentation publication system recently went through an upgrade to enable speedier, more mobile-friendly content. We decided to re-evaluate our commenting platform to ensure that it meets your expectations and serves as an optimal feedback mechanism. During this redesign, we invite your input on providing feedback on Red Hat documentation via the discussion platform.